First published: Thu Nov 21 2019(Updated: )
Micro Focus Solutions Business Manager versions prior to 11.7.1 are vulnerable to XML External Entity Processing (XXE) on certain operations.
Credit: security@microfocus.com
Affected Software | Affected Version | How to fix |
---|---|---|
Microfocus Solutions Business Manager | <11.7.1 |
Upgrade SBM to 11.7.1 or later
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2019-18943 is a vulnerability that allows XML External Entity Processing (XXE) in Micro Focus Solutions Business Manager versions prior to 11.7.1.
CVE-2019-18943 allows attackers to exploit XML External Entity Processing (XXE) on certain operations in Micro Focus Solutions Business Manager versions prior to 11.7.1.
The severity of CVE-2019-18943 is high with a severity value of 8.
To fix CVE-2019-18943, upgrade Micro Focus Solutions Business Manager to version 11.7.1 or later.
You can find more information about CVE-2019-18943 in the security bulletin provided by Micro Focus Solutions Business Manager: [link](http://knowledgebase.serena.com/resources/sites/KNOWLEDGEBASE/content/live/SOLUTIONS/142000/S142001/en_US/sbm_11.7.1_security_bulletin.htm).